Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Hardcoded FTP Credentials within the firmware
Vulnerability Description
ShineLan-X contains a set of credentials for an FTP server was found within the firmware, allowing testers to establish an insecure FTP connection with the server. This may allow an attacker to replace legitimate files being deployed to devices with their own malicious versions, since the firmware signature verification is not enforced.
CVSS Information
N/A
Vulnerability Type
使用硬编码的凭证
Vulnerability Title
Growatt ShineLan-X 安全漏洞
Vulnerability Description
Growatt ShineLan-X是中国古瑞瓦特(Growatt)公司的一款光伏逆变器的数据记录器。 Growatt ShineLan-X存在安全漏洞,该漏洞源于固件中包含FTP服务器凭据,可能导致替换合法文件为恶意版本。
CVSS Information
N/A
Vulnerability Type
N/A